gcp-batch-container-commands-options

Container commands and option strings can contain inline secrets.

gcphigh service: gcp:batch emits ContainsCredential

Where it sits

locationbatch.projects.locations.jobs.get.taskGroups[].taskSpec.runnables[].container.{commands[],options}
location kindcommand_argument
data kindscredential password api_key access_key secret_key oauth_token sensitive_data
emits edgeContainsCredential
serviceBatch (gcp:batch)

Collection recipe

access moderead_api
operationbatch.projects.locations.jobs.get
response pathtaskGroups[].taskSpec.runnables[].container.{commands[],options}
encodingjson
params{"name": "\u003cresource-name\u003e"}

Required permissions

batch.jobs.get

References

move · open · esc close